Описание
ELSA-2026-29952: compat-poppler022 security update (IMPORTANT)
[0.22.5-4.0.1]
- Fix for CVE-2026-10118 [Orabug: 39635559]
Обновленные пакеты
Oracle Linux 7
Oracle Linux x86_64
compat-poppler022
0.22.5-4.0.1.el7
compat-poppler022-cpp
0.22.5-4.0.1.el7
compat-poppler022-glib
0.22.5-4.0.1.el7
compat-poppler022-qt
0.22.5-4.0.1.el7
Связанные CVE
Связанные уязвимости
A flaw was found in Poppler's Splash backend. A remote attacker could exploit this vulnerability by crafting a malicious PDF file that, when rendered, triggers an integer overflow in the `tilingPatternFill` function. This overflow leads to an undersized heap memory allocation, allowing a subsequent out-of-bounds write. Successful exploitation could result in arbitrary code execution, information disclosure, or denial of service within the context of the application processing the PDF.
A flaw was found in Poppler's Splash backend. A remote attacker could exploit this vulnerability by crafting a malicious PDF file that, when rendered, triggers an integer overflow in the `tilingPatternFill` function. This overflow leads to an undersized heap memory allocation, allowing a subsequent out-of-bounds write. Successful exploitation could result in arbitrary code execution, information disclosure, or denial of service within the context of the application processing the PDF.
A flaw was found in Poppler's Splash backend. A remote attacker could exploit this vulnerability by crafting a malicious PDF file that, when rendered, triggers an integer overflow in the `tilingPatternFill` function. This overflow leads to an undersized heap memory allocation, allowing a subsequent out-of-bounds write. Successful exploitation could result in arbitrary code execution, information disclosure, or denial of service within the context of the application processing the PDF.
A flaw was found in Poppler's Splash backend. A remote attacker could ...